Senior GRC Analyst

5 days ago


Toronto, Ontario, Canada McCarthy Tétrault LLP Full time


Job Description

McCarthy Tétrault is a Canadian law firm that offers a full suite of legal and business solutions to clients in Canada and around the world. At McCarthy Tétrault, we offer challenging and rewarding career opportunities in our offices in Toronto, Montreal, Quebec City, Calgary and Vancouver. We are delighted to have earned the distinction of one of Canada's Best Diversity Employers for the thirteenth consecutive year in 2025. Our culture is built on professional excellence, collaboration, innovation, thought leadership and entrepreneurialism. We embrace inclusion in all its forms and we provide the tools and opportunities to help our people develop to their full potential.


We are recruiting for a Senior GRC Analyst to join our team in our Toronto or Calgary office. The successful  candidate must have a minimum of 5 years of experience in Cybersecurity and will be responsible for Risk Assessments, Security Awareness and Training, Internal and External Audits. McCarthy Tétrault employees benefit from a hybrid work environment.


As a Senior GRC Analyst, you will be:

  • Implementing and maintaining GRC policies, procedures, and controls aligned with ISO/IEC 27001:2022, NIST, and other relevant standards.
  • Conducting risk assessments across business units, IT systems, and third-party vendors. Tracking and reporting on risk mitigation plans and residual risk.
  • Monitoring regulatory changes (e.g., PIPEDA, GDPR, Quebec Law 25) and ensuring timely updates to internal controls and documentation.
  • Coordinating internal and external audits, including evidence collection, control testing, and remediation tracking.
  • Preparing dashboards and reports on risk posture, compliance status, and control effectiveness for review by the GRC Manager and senior leadership.
  • Developing and delivering GRC-related training and awareness sessions to promote a culture of compliance and risk ownership.
  • Capturing and documenting risks for inclusion in the enterprise risk register, ensuring traceability and accountability.
  • Administering GRC platforms (e.g., Archer, ServiceNow GRC) and contributing to automation of workflows and reporting.
  • Identifying opportunities to enhance risk management processes and drive a culture of security and compliance across the organization.
  • Advising senior leadership on emerging risks, regulatory trends, and best practices.
  • Influencing and building consensus among diverse stakeholders, including both technical and non-technical teams.

As our ideal candidate, you will distinguish yourself by the following profile:

  • Bachelor's degree in Information Security, Risk Management, or a related field.
  • Minimum 5 years of experience in GRC, risk management, or compliance roles.
  • Certifications such as ISO/IEC 27001 Lead Auditor, CIPP, CISM, CRISC, or CISSP preferred.
  • Strong analytical, communication, and interpersonal skills, with the ability to translate technical risks into business impact, influence decision-making, and build consensus across diverse stakeholders.
  • Experience working in cross-functional teams and managing multiple priorities.
  • Familiarity with change management, disaster recovery, and business continuity practices.
  • Experience with workflow automation and reporting within GRC or AI platforms is an asset.
  • Hands-on experience with GRC tools (e.g., Archer, ServiceNow GRC) is preferred.

As a member of the McCarthy team, you will have access to:

  • Outstanding benefits from day one, including insurance premiums paid by the Firm and wellness and technology reimbursements.
  • Competitive compensation, paid overtime and generous time off, including a day off to volunteer and a day off for your birthday.
  • A commitment to professional development and growth opportunities for our people at all levels, supported by a culture that fully embraces and encourages two-way feedback.
  • Strong community involvement and a commitment to equity, diversity and inclusion.
  • A collaborative, cohesive culture that connects lawyers and business teams through collective purpose.

How to Apply: 

We encourage external candidates to apply online and internal applicants must apply directly through our internal careers portal on Espresso. We look forward to receiving your application.

We thank all applicants for their interest in McCarthy Tétrault; however, only chosen applicants will be contacted. We regret that we are unable to respond to individual inquiries about application status. McCarthy Tétrault is an equal opportunity employer that fosters an inclusive, equitable, and accessible environment. Please notify us if you require accommodation at any time during the recruitment process.



  • SAP GRC Security

    2 weeks ago


    Toronto, Ontario, Canada Evoort Solutions Full time US$80,000 - US$160,000 per year

    Job Title: Senior SAP GRC & Security Consultant (8+ Years Experience)Location: Remote / OnsiteEmployment Type: Full-Time / ContractRole Summary:We are seeking an experienced SAP GRC and Security Consultant with deep expertise across SAP ECC and SAP S/4HANA, including multiple Security & GRC implementations and ECC to S/4HANA migration projects. This role...

  • Senior Manager GRC

    2 weeks ago


    Toronto, Ontario, Canada KPMG Canada Full time $120,000 - $250,000 per year

    OverviewAt KPMG, you'll join a team of diverse and dedicated problem solvers, connected by a common cause turning insight into opportunity for clients and communities around the world.Are you a talented leader with a proven track record for motivating teams and delivering exceptional client service?Our Technology Risk Consulting services team is growing and...

  • Senior Manager GRC

    2 weeks ago


    Toronto, Ontario, Canada KPMG Full time $120,000 - $200,000 per year

    OverviewAt KPMG, you'll join a team of diverse and dedicated problem solvers, connected by a common cause: turning insight into opportunity for clients and communities around the world.Are you a talented leader with a proven track record for motivating teams and delivering exceptional client service?Our Technology Risk Consulting services team is growing and...


  • Toronto, Ontario, Canada Moneris Full time $120,000 - $180,000 per year

    Your Moneris Career - The OpportunityYou will be in a leadership role responsible for overseeing our security governance, risk management, compliance, and awareness programs. Reporting directly to the VP, Information Security, you will play a critical part in ensuring that security initiatives align with business objectives and regulatory requirements. The...

  • GRC Consultant

    1 day ago


    Toronto, Ontario, Canada Apex Systems Full time

    GRC ConsultantIndustry:Financial ServicesLocation:Toronto.Hybrid:1 day in office per weekDuration of Contract/Perm:6 month rolling contractHours/week: 37.5Start date:January 2026ResponsibilitiesGovernance Frameworks (Complaints & Incidents): Design and implement policy, standards, and RACI for complaint handling and incident management; embed consistency,...

  • Senior Analyst, ORM

    2 weeks ago


    Toronto, Ontario, Canada PC Financial Full time $80,000 - $120,000 per year

    Referred applicants should not apply directly to this role. All referred applicants must first be submitted through Workday by a current Loblaw Colleague.Location: 500 Lake Shore Boulevard West, Toronto, Ontario, M5V 2V9When you hire great people, great things can happen. PC Financial offers unprecedented value to Canadians through payment products. We're a...


  • Toronto, Ontario, Canada RBC Full time US$1,000,000 - US$1,500,000 per year

    Job DescriptionAre you a talented, creative, and results-driven professional who thrives on delivering high-performing applications? Come join usThe Compliance Technology team, a part of Global Functions Technology (GFT), is seeking a highly skilled and experienced Senior Manager, Business Analysis to lead and drive business analysis efforts for...


  • Toronto, Ontario, Canada OMERS Full time $80,000 - $120,000 per year

    Choose a workplace that empowers your impact.Join a global workplace where employees thrive. One that embraces diversity of thought, expertise and experience. A place where you can personalize your employee journey to be — and deliver — your best.We are a purpose-driven, dynamic and sustainable pension plan. An industry leading global investor with teams...


  • Toronto, Ontario, Canada Scotiabank Full time

    Requisition ID: 240255Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.The RoleWe are seeking a highly skilled and motivatedTechnical Business Analystto support a multi-year transformation initiative focused on implementing a scalableEnterprise Governance, Risk, and Controls (eGRC)platform. This role will...


  • Toronto, Ontario, Canada M3C Recrutement Inc. Full time

    M3C recrute un(e) analyste ServiceNow expérimenté(e) (ID671) pour le compte d'un client international en forte croissance. Il s'agit d'un mandat dédié de 6 mois. Le rôle consiste à appuyer les efforts de développement et d'optimisation de la plateforme ServiceNow en recueillant les besoins d'affaires et en contribuant à la conception de solutions...